Summary | ZeroBOX

12345Warzone.txt.exe

Malicious Library UPX Malicious Packer PE File OS Processor Check PE32
Category Machine Started Completed
FILE s1_win7_x6401 Nov. 2, 2023, 10:08 a.m. Nov. 2, 2023, 10:10 a.m.
Size 17.4KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 168457c869ff329fb895e314d1d8d61c
SHA256 5e2aa579f32120ae0d2a6480e09ae3cd4a29a09896b7a8f75eafd11002d56234
CRC32 8FD6C044
ssdeep 384:+/18s1tvHAqVDP5Evvq7UwInyJ19wKy8n:UD1V3P5Evv7wInyJ1qKh
Yara
  • Malicious_Library_Zero - Malicious_Library
  • UPX_Zero - UPX packed file
  • Malicious_Packer_Zero - Malicious Packer
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

resource name WM_DISP
name WM_DISP language LANG_ENGLISH filetype PE32 executable (DLL) (GUI) Intel 80386, for MS Windows sublanguage SUBLANG_ARABIC_QATAR offset 0x00004070 size 0x00001200